PT-2024-11035 · Dbartholomae · Lambda-Middleware Frameguard

Published

2024-02-12

·

Updated

2024-10-11

·

CVE-2021-4437

CVSS v3.1

6.5

Medium

VectorAV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions dbartholomae lambda-middleware frameguard versions up to 1.0.4
Description A problematic issue has been found in the JSON Mime-Type Handler component, specifically in the file packages/json-deserializer/src/JsonDeserializer.ts. The manipulation leads to inefficient regular expression complexity.
Recommendations For versions up to 1.0.4, upgrade to version 1.1.0 to address this issue.

Fix

DoS

Weakness Enumeration

Related Identifiers

CVE-2021-4437
GHSA-M3F4-957X-M785

Affected Products

Lambda-Middleware Frameguard